Secret Manager 是安全又便利的儲存系統,可以儲存 API 金鑰、密碼、憑證和其他機密資料。本頁面說明 Cloud de Confiance 與 Google Cloud 版本的 Secret Manager 差異。
如要進一步瞭解 Secret Manager,請參閱「Secret Manager 總覽」和其餘 Secret Manager 說明文件。
主要差異
Cloud de Confiance 版本的 Secret Manager 與 Google Cloud 版本有些許差異。以下列舉幾項顯著差異:
- 密鑰無法進行使用者管理的複製作業。
- 目前僅提供 Secret Manager API 的 v1 版。
- 區域端點無法使用。
本節其餘部分將提供更詳細的差異清單。如果已熟悉 Google Cloud,建議仔細查看這些差異,特別是在設計要在 Cloud de Confiance上執行的應用程式之前。此外,也建議查看 Cloud de Confiance 與 Google Cloud 的一般差異。
如要使用目前無法在 Cloud de Confiance中使用的特定 Secret Manager 功能,請與Cloud de Confiance 支援團隊聯絡。 如要接收 Cloud de Confiance新功能推出時的通知,請訂閱版本資訊。除非另有規定,否則預覽版功能不適用於 Cloud de Confiance。
可用性和災難復原
| 密鑰複寫 |
無法使用採用使用者管理複製功能的 Secret。如要建立密鑰,但不想指定儲存區域,請使用自動複製功能。如要符合資料落地需求,請建立區域性密鑰。 |
工作流程和工具
| API 版本 |
目前僅提供 Secret Manager API 的 v1 版。v1beta1 和 v1beta2 API 版本已無法使用。 |
網路
| 區域端點 |
無法使用區域端點。 Cloud de Confiance 會使用全域服務負載平衡器,自動將流量導向適當的區域堆疊,而非使用區域端點。 存取區域密鑰的網址格式在 Google Cloud 和 Cloud de Confiance universe 之間有所不同。 Google Cloud:
Cloud de Confiance:
|
相關指南
下列資訊也可能影響您在 Cloud de Confiance by S3NS使用及設計 Secret Manager 的方式。這些指南包含在 Cloud de Confiance中使用的一般資訊,包括文件、安全性和存取控管、帳單、工具和服務使用情形。
如要進一步瞭解 Cloud de Confiance 中的其他服務和功能,以及與 Google Cloud 相似服務的差異,請參閱「產品清單」。